dc.contributor.author | Nyambo, Devotha | |
dc.contributor.author | Yonah, Zaipuna | |
dc.contributor.author | Tarimo, Charles | |
dc.date.accessioned | 2020-03-01T01:13:54Z | |
dc.date.available | 2020-03-01T01:13:54Z | |
dc.date.issued | 2020-03-01 | |
dc.identifier.issn | 2210-142X | |
dc.identifier.uri | https://journal.uob.edu.bh:443/handle/123456789/3789 | |
dc.description.abstract | The emerging need for web and mobile applications in service delivery information platforms has rapidly resulted in a bulk of applications being developed with little concern about their security. Researchers in web and mobile applications security have proposed a number of solutions to security threats in these computing platforms such as 'in device' and 'in network' level security. However, little has been done in assisting developers of web and mobile applications build secure applications. This paper proposes SeC-WeMA (SeCure Web and Mobile Applications) framework which, is a holistic security framework for guiding the development of converged web and mobile applications. SeC-WeMA framework has four building blocks which provide guidance to application developers on conducting system threats modelling, identification of security requirements, conducting security controls assessment, and conducting system security testing. In addition, the paper presents SeC-WeMA framework validation results as it was presented to developers of web and mobile applications. Following our previous works on converged web and mobile applications, SeC-WeMA building blocks have been put together by using ConceptDraw software. SeC-WeMA framework validation has engaged a quantitative empirical approach with three major assessment metrics which are: framework relevance, framework usability and framework flexibility. Preliminary results reveal acceptance of SeC-WeMA to web and mobile applications developers as a holistic security framework to guide them on development of secure applications. | en_US |
dc.language.iso | en | en_US |
dc.publisher | University of Bahrain | en_US |
dc.rights | Attribution-NonCommercial-NoDerivatives 4.0 International | * |
dc.rights.uri | http://creativecommons.org/licenses/by-nc-nd/4.0/ | * |
dc.subject | Holistic security framework, SeC-WeMA, Converged web and mobile applications | en_US |
dc.title | Framework for Developing Secure Converged Web and Mobile Applications | en_US |
dc.identifier.doi | http://dx.doi.org/10.12785/ijcds/090203 | |
dc.volume | 9 | en_US |
dc.issue | 2 | en_US |
dc.pagestart | 167 | en_US |
dc.pageend | 177 | en_US |
dc.contributor.authorcountry | Tanzania | en_US |
dc.contributor.authoraffiliation | Nelson Mandela African Institution of Science and Technology | en_US |
dc.source.title | International Journal of Computing and Digital Systems | en_US |
dc.abbreviatedsourcetitle | IJCDS | en_US |
The following license files are associated with this item: